From a17c894042669a624c8381fed63babe2e75fdc6d Mon Sep 17 00:00:00 2001 From: "lpsolit%gmail.com" <> Date: Sat, 11 Mar 2006 09:06:41 +0000 Subject: Bug 329334: User::match_field() may redirect you outside your Bugzilla installation - Patch by Frédéric Buclin r/a=myk MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- Bugzilla/User.pm | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'Bugzilla/User.pm') diff --git a/Bugzilla/User.pm b/Bugzilla/User.pm index 41feb1128..ec69e0494 100644 --- a/Bugzilla/User.pm +++ b/Bugzilla/User.pm @@ -1060,7 +1060,7 @@ sub match_field { my $template = Bugzilla->template; my $vars = {}; - $vars->{'script'} = $ENV{'SCRIPT_NAME'}; # for self-referencing URLs + $vars->{'script'} = Bugzilla->cgi->url(-relative => 1); # for self-referencing URLs $vars->{'fields'} = $fields; # fields being matched $vars->{'matches'} = $matches; # matches that were made $vars->{'matchsuccess'} = $matchsuccess; # continue or fail -- cgit v1.2.3-24-g4f1b